Malware

Win32/Kryptik.GEEW removal guide

Malware Removal

The Win32/Kryptik.GEEW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GEEW virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Collects information about installed applications
  • Anomalous binary characteristics

Related domains:

1-2a.ru

How to determine Win32/Kryptik.GEEW?


File Info:

crc32: 259162ED
md5: 7b0bef06c94586adb134c8bc55f395d6
name: 7B0BEF06C94586ADB134C8BC55F395D6.mlw
sha1: 1503b6df66fc1e45066b6ab33f9b27000315a84a
sha256: 1dc26dafd8b7a56bc459ff081980a000a1a44a9a96d72c9b24df8fe2538ed3e3
sha512: eaeb64472896c6b650c299ca7b37e5f4dd731750d18eb5bd62ee4d5b5a1fe612bcb8fd743dc9dcd87366949233da9001d415bc9ec0ee62be0b4719bbde8868c4
ssdeep: 49152:uwgLD1o2kvFqaFafC7pRQmtWZT8ah6ZNJDP737iXZ2WH2xeN59p9zqAfjLiwVVw:uwKopKkn98h65b73eXxlN59p9zaAU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Rnoebt ukenefteopk
InternalName: BASEOSREIH.EXE
FileVersion: 3.1.5.2
CompanyName: xa9Rnoebt ukenefteopk
ProductName: BASEOSREIH
ProductVersion: 3.1.5.2
OriginalFilename: baseosreih.exe
Translation: 0x0409 0x04e4

Win32/Kryptik.GEEW also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Zadved.936
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Occamy.A2
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3233351
Cybereasonmalicious.6c9458
CyrenW32/S-c31bc0d6!Eldorado
SymantecPUA.Gen.2
ESET-NOD32a variant of Win32/Kryptik.GEEW
APEXMalicious
AvastWin32:Malware-gen
Kasperskynot-a-virus:VHO:AdWare.Win32.StartSurf.gen
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusTrojan.Win32.Kryptik.eyvder
MicroWorld-eScanGen:Heur.Mint.Zamg.1
Ad-AwareGen:Heur.Mint.Zamg.1
SophosMal/EncPk-ABL
ComodoApplication.Win32.FileTour.AD@5ysvkg
BitDefenderThetaAI:Packer.300E744921
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.rh
FireEyeGeneric.mg.7b0bef06c94586ad
EmsisoftGen:Heur.Mint.Zamg.1 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.24F2165
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Mint.Zamg.1
GDataGen:Heur.Mint.Zamg.1
AhnLab-V3Malware/Win32.Generic.C2433573
Acronissuspicious
McAfeePacked-FKC!7B0BEF06C945
MAXmalware (ai score=99)
VBA32Downloader.Snojan
PandaTrj/GdSda.A
RisingAdware.Adload!1.B2A5 (CLASSIC)
IkarusPUA.Win32.Dlhelper
FortinetW32/Kryptik.GFBV!tr
AVGWin32:Malware-gen

How to remove Win32/Kryptik.GEEW?

Win32/Kryptik.GEEW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment